基于OpenStack私有云資源訪問控制的應(yīng)用與研究
發(fā)布時間:2018-03-23 07:30
本文選題:私有云平臺 切入點:訪問控制 出處:《北方工業(yè)大學(xué)》2015年碩士論文 論文類型:學(xué)位論文
【摘要】:在云計算技術(shù)快速發(fā)展,網(wǎng)絡(luò)速度的提升和硬件的計算能力大大增強的帶動下,人類進入到互聯(lián)網(wǎng)時代。全世界公司和組織都在使用云計算技術(shù)來構(gòu)建各自的公有云和私有云。對于學(xué)校和小型組織,使用開源的云框架構(gòu)建自己的私有云是一個很好的選擇。利用搭建的私有云平臺,對資源進行管理,提高資源的利用效率具有實際意義。 首先本文從云計算技術(shù)的發(fā)展開始,研究了建立私有云的優(yōu)勢和需要解決的問題。通過比較幾種開源的云平臺框架的特點,選取OpenStack作為搭建私有云平臺的開源框架,并介紹了OpenStack的系統(tǒng)結(jié)構(gòu)和各組件功能。在此基礎(chǔ)上論文對OpenStack三種部署方式進行了研究。 然后,本文主要對OpenStack框架中負責(zé)私有云平臺訪問控制資源的Keystone組件,進行研究和分析。從Keystone的用戶管理、多租戶機制和Token管理幾方面入手,通過對實際代碼的分析,總結(jié)了Keystone組件的安全認證工作流程。通過對Keystone組件的研究,為構(gòu)建私有云平臺的訪問控制體系提供了依據(jù)和方法。 接下來,本文闡述了私有云平臺下需要管理的資源,并對用于管理資源的OpenStack組件分別進行研究分析。最后論文給出了一個針對實際應(yīng)用的私有云平臺構(gòu)建方案,并且實際演示了部署OpenStack的過程。 最后,在已建立起的OpenStack私有云平臺上,根據(jù)實際應(yīng)用需求進行二次開發(fā)。實現(xiàn)了對虛擬機資源,網(wǎng)絡(luò)資源,存儲資源,鏡像資源等私有云平臺資源進行統(tǒng)一管理的資源池功能。同時實現(xiàn)了對資源進行訪問控制的功能。所有功能的開發(fā)均調(diào)用OpenStack所提供的API,實現(xiàn)了OpenStack平臺的可擴展性和模塊之間的獨立性。開發(fā)的私有云管理平臺可以提供對IT資源的基本管理,以及用戶對私有云平臺資源訪問控制管理。
[Abstract]:Driven by the rapid development of cloud computing technology, the improvement of network speed and the greatly enhanced computing power of hardware, People are entering the Internet age. Companies and organizations around the world are using cloud computing technology to build their own public and private clouds. For schools and small organizations, It is a good choice to use the open source cloud framework to build its own private cloud. It is of practical significance to use the private cloud platform to manage resources and improve the efficiency of resource utilization. First of all, this paper starts with the development of cloud computing technology, studies the advantages of building private cloud and the problems that need to be solved. By comparing the characteristics of several open source cloud platform frameworks, we select OpenStack as the open source framework to build private cloud platform. The system structure and component functions of OpenStack are introduced, and the three deployment modes of OpenStack are studied in this paper. Then, this paper mainly studies and analyzes the Keystone component which is responsible for private cloud platform access control resource in OpenStack framework. From the aspects of Keystone user management, multi-tenant mechanism and Token management, this paper analyzes the actual code. This paper summarizes the security authentication workflow of Keystone components and provides the basis and method for constructing the access control system of private cloud platform through the research of Keystone components. Then, this paper describes the resources to be managed under the private cloud platform, and analyzes the OpenStack components used to manage the resources. Finally, this paper presents a private cloud platform construction scheme for practical applications. And the actual demonstration of the deployment of OpenStack process. Finally, on the established OpenStack private cloud platform, according to the actual application requirements, the secondary development of virtual machine resources, network resources, storage resources, The resource pool of private cloud platform resources such as mirror resources is managed uniformly. At the same time, the access control function of resources is realized. All the functions are developed by calling API provided by OpenStack, and the extensibility of OpenStack platform is realized. Private cloud management platform developed to provide basic management of IT resources, And the user to the private cloud platform resource access control management.
【學(xué)位授予單位】:北方工業(yè)大學(xué)
【學(xué)位級別】:碩士
【學(xué)位授予年份】:2015
【分類號】:TP393.09;TP309
【參考文獻】
相關(guān)期刊論文 前7條
1 李小寧;李磊;金連文;黎德生;;基于OpenStack構(gòu)建私有云計算平臺[J];電信科學(xué);2012年09期
2 姜毅;王偉軍;曹麗;劉凱;陳桂強;;基于開源軟件的私有云計算平臺構(gòu)建[J];電信科學(xué);2013年01期
3 尹超;黃必清;劉飛;聞立杰;王朝坤;黎曉東;楊書評;葉丹;柳先輝;;中小企業(yè)云制造服務(wù)平臺共性關(guān)鍵技術(shù)體系[J];計算機集成制造系統(tǒng);2011年03期
4 馬友禮;陳世平;;OpenStack云虛擬機安全策略研究[J];信息技術(shù);2014年01期
5 趙少卡;李立耀;凌曉;徐聰;楊家海;;基于OpenStack的清華云平臺構(gòu)建與調(diào)度方案設(shè)計[J];計算機應(yīng)用;2013年12期
6 徐磊;王磊;;基于OpenStack的私有云搭建的研究[J];信息通信;2014年05期
7 李知杰;趙健飛;;OpenStack開源云計算平臺[J];軟件導(dǎo)刊;2012年12期
,本文編號:1652476
本文鏈接:http://sikaile.net/guanlilunwen/ydhl/1652476.html
最近更新
教材專著